Skip to main content
🇩🇪GDPR-compliant
Find experienced

IEEE 802.1X Experts in Germany

matched in minutes from over 15,000 CVs with the power of AI.

Hire experts who secure wired and wireless access with IEEE 802.1X, EAP, RADIUS, switch and WLAN policy setup, and rollout troubleshooting. Get fast, precise matching with vetted, available freelancers.

Meet FRATCH Experts in Germany, who have recently used IEEE 802.1X

Verified expert

Christoph Reiche

View profile

IT Consultant

Augsburg
Christoph Reiche

Last position:

IT Consultant at Augusta Solutions

  • Successfully certified as Professional Scrum Master (PSM I)
  • Further training in AI trends, prompt engineering, and tools (ComfyUI, SD3.5, Flux, Loras)
  • Market analysis for the strategic realignment of the service portfolio
Verified expert

Konstantinos Metaxas

View profile

Senior Project Manager

Unterhaching
Konstantinos Metaxas

Last position:

IT-Fly Specialist – Global Rollout at Lufthansa Group

  • Plan & Prepare (Site Design & Readiness): Inventory & Design: Dell PowerEdge R-Series, Aruba switches (L2/L3), notebooks/peripherals; serials/asset tags, IPv4/IPv6 addressing, VLAN-/DHCP-/DNS plan

  • Runbooks/MOPs: site rollout runbook, backout strategy (<15–30 min), risk register, communication matrix; approvals via CAB/change

  • Images/Packages: Golden Image (Win10/11), driver packs, BIOS/UEFI baseline; O365/Teams/OneDrive KFM; BitLocker policies; MECM/SCCM, Intune/Autopilot, MDT/WinPE

  • Logistics: shipping/customs clearance, RMA/DOA, on-site spares; tools (barcode scanner, label printer), "Go-Bag" (cables, SFPs, console cables)

  • Deliver (on-site implementation): End devices: swap & migration (USMT/OneDrive KFM), peripherals (ATB/BT printers, scanners, boarding gate hardware); domain join, compliance checks, O365 activation, printers/queues, network drives

  • Acceptance: functional tests for DCS/CUTE/CUPPS/CUSS stations, ticketing/check-in workflows, boarding gates

  • Server (R-Series): rack & stack, cabling (PDU redundancy, fiber/copper), labeling/naming; firmware/RAID (PERC), Lifecycle Controller, iDRAC network; Windows Server 2022/2025 + CIS/BSI hardening; agents (backup/AV/EDR/monitoring), time service/NTP auth, Syslog/SNMPv3

  • Network (Aruba): VLANs, LACP trunks, MSTP root; PortFast + BPDU Guard at the edge; QoS (EF/AF); dual stack (v4/v6), DHCP relay. NAC/802.1X with ClearPass/Radius/TACACS+, roles + MAB fallback; guest isolation, ACLs (Guest→Mgmt deny). Telemetry: sFlow, SNMPv3, Syslog→SIEM; LLDP→inventory/CMDB

  • Airport specifics: CUTE/CUPPS/CUSS terminals; DCS/Amadeus/SITA connectivity; FIDS (read-only); bag tag/boarding pass printing; changes in off-peak/night windows

  • Stabilize (hypercare): first-day support, KPI tracking (login times, ticket volume, error classes), QoS fine-tuning

  • Troubleshooting: Wireshark/iperf, event logs, switch counters, sFlow flows; fast incident handling as SPOC

  • Knowledge transfer: short training sessions for station teams, mini-runbooks (fault/recovery)

  • Close (documentation & handover): docs & CMDB: final configs (switch/server), topology/patch plans, IP tables, serial/asset lists, before/after photos

  • Acceptance & sign-off: UAT protocols, functional evidence (use cases), return/reuse of old hardware

  • Lessons learned: risks, standard packages, driver freeze, "known issues"

  • Interfaces/communication: station IT, airport IT, SOC/NOC, ground ops/ramp/check-in, provider (SITA/Amadeus). ITSM: ServiceNow (Inc/Req/Change/KB), handover to BAU

Verified expert

André Görst

View profile

IT Consulting Project Management / Engineering Subproject Management

Berlin
André Görst

Last position:

IT Consulting Project Management / Engineering Subproject Management at T-Systems (on assignment for government agencies)

  • Projects for federal networks (NdB).
  • CR management, EoL change requests, design and documentation according to ITSCM.
  • Data center planning.
  • Project management and engineering subproject management.
  • Software development for virtual server environments according to BSI.
Verified expert

Tony Rosolek

View profile

Wireless LAN Expert | CWNE #356 | CCNP-Enterprise

Frankfurt (Oder)
Tony Rosolek

Last position:

Network Expert at Self-employed

  • Consulting and execution of migration from Cisco AireOS to Cisco IOS-XE controller
  • Solution design
  • Configuration and staff training
  • Products: Catalyst Center, Cisco controllers and IOS and COS access points, 9800-40, 5520, 8510, 9120, 9136, 9166, Catalyst switches, Aruba Clearpass
  • Keywords: Tags, profiles, SSIDs, 802.1X authentication, captive portal, Identity PSK (iPSK), VLANs, troubleshooting, automation, RESTCONF, NETCONF, YANG
Verified expert

Sami Bejaoui

View profile

Director IT Architecture & Infrastructure Management

Tutzing
Sami Bejaoui

Last position:

German Customer (Pharma Supply-Chain Sector)

  • Integration of a FortiManager into the existing FortiGate firewall infrastructure to centralize and optimize firewall management.
Verified expert

Christian Decker

View profile

Managing Director and Senior Consultant

Groß-Umstadt
Christian Decker

Last position:

Managing Director and Senior Consultant at business-security (b-sec®) GmbH

  • Conceptual consulting for securing business processes
  • Consulting on planning and implementation of IT and IT security projects
  • Security and policy checks, process optimizations, emergency planning
  • Project management and interim management in IT infrastructure and information security

Overview of relevant projects:

  • 2025: Consulting on a DLP concept for Digid GmbH.
  • 2025: Consulting a client after a cybersecurity attack that compromised the IT infrastructure and where the attacker obtained M365 tenant admin rights. Investigated the IT infrastructure and restored it. Developed recommendations to improve IT security.
  • 2025: Continued the projects listed below for Thyssenkrupp Marine Systems and Norddeutsche Landesbank.
  • 2024: Created a DNS concept including advice on DNS strategy and technology, DNS design, DNS security, load balancing, reverse lookup zones, and automation. Created a DHCP concept including advice on DHCP design, a central DHCP management system and automation. Advised on operating the mentioned products, the operational processes, and updated IT documentation and IT service descriptions for Thyssenkrupp Marine Systems.
  • 2024: As-is analysis and assessment of the network and security infrastructure established by providers in terms of overall architecture including design and components. Designed solution proposals to improve current operations for performance and security maximization as well as complexity reduction. Presented the results to C-level, their causes and possible solutions including required decision templates. Developed a SASE concept based on a zero-trust architecture for Norddeutsche Landesbank.
  • 2024: Continued the projects listed below for Atlas GmbH and Deutsche Vermögensberatung AG.
  • 2023: Consulting on resolving findings from an IT security assessment of the IT infrastructure, conducting proofs of concept for DDoS protection and digital experience monitoring (DEM) with Zscaler (ZIA, ZPA & ZDX), creating a new security architecture based on zero trust, redesigning a Cisco ISE implementation, and designing a DNS security solution to protect guests and financial advisors for Atlas GmbH / Deutsche Vermögensberatung AG.
  • 2023: Continued the projects listed below for Digid GmbH, Vaillant Group GmbH (until 09/2023), Federal Institute for Geosciences and Natural Resources (until 05/2023), and Union Investment IT-Services GmbH (until 07/2023).
  • 2022: Created and reviewed whitepapers for infrastructure and security architectures, and planned new network infrastructures for the German Aerospace Center.
  • 2022: Developed a concept for the technical and procedural modernization of a disaster recovery plan for United Nations Volunteers.
  • 2022: Developed a concept for migrating measurement data to a cloud environment, introduced network access control, and conducted an awareness training for Digid GmbH.
  • 2022: Developed a network segmentation concept for DZ Hyp AG.
  • 2022: Developed a network segmentation concept for the Federal Employment Agency.
  • 2021: Developed a new load balancer architecture concept for Bundeswehr Fuhrparkservices GmbH.
  • 2021: Conducted a vulnerability scan and penetration test of a web frontend including analysis and recommendations for remediation considering risk and likelihood for the client ifi GmbH.
  • 2021: Consulting, design, and subproject management for implementing a network access control solution (certificate authentication and MAC address bypass) and macro segmentation (area and zone concept based on dynamic device assignment) in office and production IT for Vaillant Group GmbH.
  • 2021: Upgraded and optimized LAN and WLAN infrastructure for United Nations Volunteers.
  • 2021: Developed a target concept for modernizing the IT security infrastructure including the DMZ (Cisco switches, firewalls, WSA, ESA, SMA), internet connections, admin and management networks, and the wireless LAN, including overseeing implementation for the Federal Institute for Geosciences and Natural Resources.
  • 2021: Created a micro-segmentation concept based on Cisco DNA, SGT, and zero trust for Union Investment IT-Services GmbH.
  • 2021: Reviewed and updated ISMS level 3 policies and created procedure instructions for Software AG.
  • 2021: Project lead for the global tech refresh project Meraki WLAN 2.0, coordinated the outsourcing of LAN/WLAN infrastructure to a managed service provider, and created a WLAN concept for automated guided vehicles for Heraeus Infosystems GmbH.
  • 2021: Project management and technical support for the 'Transition of SIEM/SOC Services' project migrating a client to a shared environment, and took on the interim role of Head of Security Operations at Datagroup SE.
  • 2021: Conducted a workshop for the future implementation of mobile device management for Allgeier Experts Go GmbH.
  • 2021: Subproject management for implementing a firewall rule management tool and recertifying NAC endpoints based on 802.1x and MAB for Union Investment IT-Services GmbH.
  • 2020: Developed a network segmentation concept for two data centers based on Cisco and VMware for Aareon AG.
  • Recorded and analyzed the current network architecture including project initiation.
  • Designed a micro-segmentation concept in the data center and access network.
  • 2020: Infrastructure and security architecture audit for Stuttgarter Versicherung AG.
  • Analyzed the IT infrastructure and security architecture regarding network and security component configurations. Also reviewed contracts, process documents, and manuals for completeness. Developed recommendations to improve the stability and operation of the infrastructure. Created a network segmentation concept and led the project to implement the measures from the audit.
  • 2020: Consulting on setting up an ISMS-light for Josera foodforplanet GmbH & Co. KG.
  • 2020: Security architecture consulting for Datagroup SE.
  • Developed a future IT infrastructure and IT security architecture.
  • Documented the current IT architecture of all 23 entities.
  • Made recommendations to optimize the IT infrastructure and drafted a comparison of a traditional perimeter security concept versus a zero trust model.
  • Created a security zone concept.
  • Designed an IT infrastructure architecture in coordination with all entities.
  • 2018 - 2019: Stream lead in the cybersecurity program at Deutsche Lufthansa AG.
  • Responsible for designing and implementing 9 projects in IT security infrastructure and user access management, as well as managing project managers and experts.
  • Project area: Network segmentation and access control.
  • Project area: Security architecture.
  • Project area: Privileged, identity & access management.
  • Project area: Simplify user authentication (MFA).
  • Project area: Mobile & endpoint security.
  • Project area: OT security.
  • Project area: E-enabled aircraft.
  • 2018: Security architecture consulting for Deutsche Lufthansa AG.
  • Project management for the development, evaluation, and management of the company-wide information security architecture.
  • Developed a security strategy and a roadmap to align the security architecture with the zero trust model.
  • Evaluated market security solutions, services, and tools.
  • Defined requirements for RFPs and assessed proposals.
  • Developed, maintained, and monitored security architecture artifacts.
  • Conducted security assessments of existing and new IT systems and security services.
  • 2018: ISMS consulting for GLS IT Services GmbH.
  • Advised on implementing and initially operating an ISMS based on ISO27001.
  • Audited the IT environments of GLS country subsidiaries.
  • Analyzed and assessed IT security risks and derived necessary measures.
  • Developed solution proposals in coordination with relevant stakeholders.
  • Managed the project and handed over the ISMS to operations.
  • 2016 - 2018: Security pre-sales consultant for Cisco Systems GmbH.
  • Provided nationwide strategic and conceptual consulting to major enterprise and financial and insurance clients on Cisco and Meraki security products and services such as Firepower, WSA, ESA, Stealthwatch, and ISE.
  • 2017 - 2018: Designed and implemented an ISMS for Verivox GmbH.
  • Conducted various BIAs and gap analyses.
  • Developed security policies based on ISO 2700x.
  • Served as interim information security officer.
  • 2017: Developed an emergency concept for VPV Lebensversicherungs-AG.
  • Reviewed and updated the IT emergency manual.
  • 2016: Consulting and project management for designing cloud & hosting services for Vodafone Group Services GmbH.
  • Analyzed and optimized the sell-build-run process.
  • Created detailed level designs for cloud products.
Verified expert

Abdelhak Mahou

View profile

Network Architect

Düsseldorf
Abdelhak Mahou

Last position:

Network Architect at Bechtle Managed Services GmbH

  • Created as-is network documentation for a Bechtle customer
  • Analyzed existing configurations and adjusted them
  • Advised on Fortinet and Check Point products
  • Troubleshot complex routing, switching and application issues
  • Tools: MS Azure, FortiManager, Cisco Nexus & Catalyst, Cisco WLAN Controller, Citrix Netscaler SD-WAN, MS Visio, Checkpoint VSX, Wireshark
Verified expert

Hisham Elsharawy

View profile

System Engineer Network & Security

Düsseldorf
Hisham Elsharawy

Last position:

System Engineer Network & Security at Isringhausen GmbH

  • Operation, maintenance and administration of the global network & security system landscape
  • Troubleshooting and support in 2nd & 3rd levels and provide technical advice to other dept.
  • Configuration of complex LAN/WAN/SD-WAN and WLAN network infrastructures (N5K, N9K, ASR 8000, Wireless Controller WLC9800, AP C91xx and VMware Velo Cloud)
  • Control of external service providers as part of service and escalation management
  • Implementation and monitoring of system updates (software upgrades, minor/major changes)
Verified expert

Matthias Weigel

View profile

Senior Network and Network Security Expert

Petersaurach
Matthias Weigel

Last position:

Self-employed at maweos GmbH

Verified expert

Christian Wolpert

View profile

Cisco Catalyst Center - SDA Wireless Consultant

Bad Tölz
Christian Wolpert

Last position:

Cisco Catalyst Center - SDA Wireless Consultant at IT Service Provider

  • Implementation of Cisco Catalyst Center wireless network for a federal ministry in Berlin with focus on wireless topics
  • Troubleshooting of day 0, day 1 and ongoing templates for zero-touch provisioning of switches and access points
  • Client authentication and authorization troubleshooting using Cisco ISE
  • Wireless guest access via Cisco ISE captive portals
  • Ekahau site surveys and WLAN survey reports
  • Cisco DNA Center, Cisco WLC and Cisco ISE
  • LAN and WLAN network design and planning based on existing HLD and LLD documents
  • C9300L and C9500 series switches, CW9166i access points
Verified expert

Charles Jakob

View profile

Network Architect

Hamburg
Charles Jakob

Last position:

Network Architect at RedGlobal GmbH

  • Configuration of Dell switches, routers, and access points.
  • Error analysis and resolution.
  • Environment: Extreme, Cisco and Dell switches and routers, Extreme A3 NAC, Extreme CloudIQ.
Verified expert

Majid Asadpoor

View profile

Lead Consultant

München
Majid Asadpoor

Last position:

Lead Consultant at Infosys

  • Network automation
  • CI/CD and Docker environment
  • Python Nornir for network automation
  • pyATS for monitoring and test case automation
  • Network Access Control (RADIUS) and device admin access control (TACACS) with AAA and Cisco ISE on Cisco/HP/Aruba devices
  • Cisco ISE cluster configuration (2/4/8 nodes)
  • Cisco ISE authentication and authorization configuration
  • Cisco/HP/Aruba switch/WLC TACACS/dot1x/RADIUS configuration
  • Cisco ISE automation with RESTCONF and Python

Discover over 15,000 top freelancers

Statistics of experts using IEEE 802.1X

Aggregated from the professional profiles of matched freelancers.

Experience

27 years

Position duration

4.3 years

Positions per freelancer

18

Top business areas

Information Technology, Operations, Project Management

Top industries

Information Technology, Telecommunication, Manufacturing

Certification focus areas

Information Technology, Project Management, Human Resources

Bachelor's degree or higher

67%

Master's degree or higher

56%

Certifications per freelancer

7

Most common languages

German, English, Arabic

Speak two or more languages

100%

Based on our profile pool as of 30 Aug 2026.

Daily rate distribution

0 2 4 6 8
<€640 €640-​800 €800-​960 €960-​1120 €1120+

The chart shows how the daily rates of freelancers in this technology in Germany are distributed, based on recent contracts on our platform. Each bar covers a rate range — its height shows how many freelancers charge within that range.

Average rates of experts in Germany using IEEE 802.1X

Rates are based on recent contracts and do not include FRATCH margin.

1000
750
500
250
Rate comparison chart
Daily rate avg. 825 €

The average daily rate is the mean of all daily rates from recent contracts of comparable freelancers on our platform.

1000
750
500
250
Rate comparison chart
Median rate 820 €

The median daily rate is the middle value of all daily rates — half of comparable freelancers charge less, half charge more. Unlike the average, it is barely affected by outliers.

Calculated based on our freelancers’ daily rates as of 30 Aug 2026. Actual rates may vary depending on seniority level, experience, skill specialization, project complexity, and engagement length.

About the technology

Network access control

IEEE 802.1X is the standard for port-based network access control. It decides who can join a wired port or wireless network before full access is granted. Companies use it to protect offices, campuses, plants, and guest access zones.

Where it fits

  • Wired switch ports
  • Wi-Fi access control
  • Guest and contractor access
  • Corporate device onboarding
  • Segmented network access

It usually works with EAP and a RADIUS server. The switch or access point acts as the authenticator, while the endpoint uses a supplicant to prove identity.

Common tooling

Strong specialists know how to combine 802.1X with RADIUS, certificate services, VLAN assignment, and device policy rules. They work across Cisco, Aruba, Juniper, Microsoft environments, and mixed vendor networks. They also understand how to test fail-open and fail-closed behavior.

When companies hire help

Companies bring in freelance expertise during network rollouts, Wi-Fi refreshes, identity changes, or security audits. They also need support when legacy devices, printers, scanners, or OT endpoints cannot authenticate cleanly. In Germany, this often matters in regulated offices, manufacturing sites, and multi-site enterprise networks.

What good specialists do

A strong IEEE 802.1X professional thinks beyond the login prompt. They map identities, certificates, device types, and fallback paths, then make the policy work without breaking business access. They also document rollout steps clearly so operations teams can keep it running.

Project outcomes

Well-run projects deliver secure onboarding, fewer unauthorized connections, and cleaner network segmentation. They also reduce manual port exceptions and make access control easier to audit. The result is a network that is stricter without becoming fragile.

Published on:
FRATCH GPT

FRATCH GPT delivers freelancer proposals with clear reasoning and transparent pricing in minutes, helping your hiring department quickly and compliantly find the best talent.

Give it a try:

Try FRATCH GPT

Frequently asked questions

Key details about IEEE 802.1X, drawn from the questions we get asked most.

IEEE 802.1X is used to control access to wired and wireless network ports before a device gets full connectivity. It helps companies let trusted users and devices in while blocking everything else. That makes it a common choice for office networks, campuses, and secure production environments.

No. 802.1X is the access-control framework, while RADIUS is often the backend authentication service and EAP is the method used to carry credentials. A good specialist understands how these parts work together and where policy decisions are made.

Bring in 802.1X expertise when you are rolling out new switches or Wi-Fi, tightening access control, or replacing a network identity setup. It is also useful when onboarding devices fails, certificates do not match, or legacy equipment needs exceptions. Freelance support is especially practical when the internal team knows the network but needs focused rollout help.

A strong IEEE 802.1X specialist usually also knows certificate services, RADIUS, VLAN design, and network troubleshooting. Familiarity with switch and WLAN policy settings matters too. In many projects, directory services and device lifecycle management are part of the work as well.

IEEE 802.1X is much stronger than MAC-based access control because it validates identity, not just a device address. MAC filtering is easy to copy and hard to trust at scale. Companies usually prefer 802.1X when they want real authentication and better auditability.

Not always. Many 802.1X tasks can be done remotely, such as policy design, certificate planning, and troubleshooting configuration. On-site help in Germany is useful when physical port testing, local user support, or staged rollout checks are needed.

Look for clear experience with 802.1X rollouts, not just general network knowledge. Good specialists can explain EAP methods, fallback handling, certificate trust, and how they test with real endpoints. They should also be able to document exceptions without weakening security.

Companies use 802.1X to stop unauthorized devices, simplify secure onboarding, and segment access by user or device type. It is also a good fit when guest access, contractor access, and managed devices need different rules. In practice, it reduces manual port changes and improves control across the network.

The average hourly rate of freelancers in Germany who have used IEEE 802.1X in their recent projects is 103 €, which corresponds to a daily rate of about 825 € based on an 8-hour working day.

Of the freelancers in Germany who have used IEEE 802.1X in their recent projects, 67% hold at least a Bachelor's degree and 56% hold at least a Master's degree.

On average, freelancers in Germany who have used IEEE 802.1X in their recent projects have 27 years of professional experience, with a single engagement typically lasting around 4.3 years.

The most common languages among freelancers in Germany who have used IEEE 802.1X in their recent projects are German (100%), English (100%), and Arabic (14%).

The most common industries among freelancers in Germany who have used IEEE 802.1X in their recent projects are Information Technology (86%), Telecommunication (71%), and Manufacturing (57%).

The most common business areas among freelancers in Germany who have used IEEE 802.1X in their recent projects are Information Technology (100%), Operations (86%), and Project Management (79%).

Main locations of FRATCH Experts, who have recently used IEEE 802.1X

Our freelancers and interim experts are at home across the DACH region — available on-site in the major business hubs or fully remote. Choose a location to discover matched specialists, local market insights and up-to-date availability.

Berlin Hamburg Munich Cologne Frankfurt Stuttgart Dusseldorf Leipzig Dortmund Essen Bremen Dresden Hanover Nuremberg

Request a free demo

Get in touch with the FRATCH team and we will get back to you within 4 hours.

Contact form

Would you rather directly get in touch?
We always have the time for a call or email!

FRATCH CEO avatar

Philipp Thomaschewski

FRATCH CEO

LinkedInFRATCH